exam questions

Exam AZ-700 All Questions

View all questions & answers for the AZ-700 exam

Exam AZ-700 topic 2 question 29 discussion

Actual exam question from Microsoft's AZ-700
Question #: 29
Topic #: 2
[All AZ-700 Questions]

You have an Azure subscription that contains the resources shown in the following table.



You plan to deploy an Azure Virtual Network NAT gateway named Gateway1. The solution must meet the following requirements:

• VM1 will access the internet by using its public IP address.
• VM2 will access the internet by using its public IP address.
• Administrative effort must be minimized.

You need to ensure that you can deploy Gateway1 to Vnet1.

What is the minimum number of subnets required on Vnet1?

  • A. 2
  • B. 3
  • C. 4
  • D. 5
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
amt2022
Highly Voted 2 years, 3 months ago
Correct Answer : 4 1. GatewaySubnet 2. Subnet 2 3. Subnet 1 with Basic SKU for Public IP 4. NAT Gatway requires in VNET 1 and hence 4. Otherwise you could have used Subnet2 to avoid creating 4th Subnet. Requirement is to create NAT GW in VNET1 so you need 4th Subnet. https://learn.microsoft.com/en-us/azure/virtual-network/nat-gateway/nat-overview Check out - NAT gateway and basic SKU resources section
upvoted 25 times
MrBlueSky
2 years ago
Why could you not just deploy the NAT Gateway into the GatewaySubnet?
upvoted 1 times
Feliphus
5 months, 3 weeks ago
..."Never deploy anything else (for example, more VMs) to the gateway subnet"... https://learn.microsoft.com/en-us/azure/vpn-gateway/vpn-gateway-about-vpn-gateway-settings#gwsub
upvoted 1 times
...
jarz
2 years ago
according to this page https://learn.microsoft.com/en-us/azure/virtual-network/nat-gateway/nat-overview NAT GW cannot be deployed into a GW Subnet.
upvoted 4 times
...
JohnnyChimpo
1 year, 10 months ago
GatewaySubnet has nothing to do with NAT Gateway resources. GatewaySubnet is the azure naming convention for subnet used with Virtual Network Gateways
upvoted 3 times
stillface
4 months, 3 weeks ago
Correct! When you create a virtual network gateway, the gateway VMs are automatically deployed to the gateway subnet (always named GatewaySubnet), and configured with the settings that you specified. The process can take 45 minutes or more to complete, depending on the gateway SKU that you selected. https://learn.microsoft.com/en-us/azure/vpn-gateway/vpn-gateway-about-vpn-gateway-settings So you will need a new Subnet for a NAT Gateway. Total: 4 subnets
upvoted 1 times
...
...
...
tester2023
2 years, 2 months ago
Another reason this makes sense is the requirement for the two VMs to continue using their own Public IPs instead of the NAT Gateway. As soon as a NAT Gateway is associated with a vNet, it overrides the instance-level IPs (see https://learn.microsoft.com/en-us/azure/virtual-network/nat-gateway/nat-gateway-resource#connect-to-the-internet-with-nat-gateway ).
upvoted 6 times
MrBlueSky
2 years ago
Wrong. It only applies to within the same subnet. So if you use the GatewaySubnet to deploy the NAT Gateway (I don't see why you wouldn't), then the answer is 3.
upvoted 3 times
MrBlueSky
2 years ago
Correction: NATGateway cannot be associated to GatewaySubnet However, NATGateway doesn't need it's own subnet and is instead associated to subnets. Answer is still 3
upvoted 3 times
jarz
2 years ago
Order of operations https://learn.microsoft.com/en-us/azure/virtual-network/nat-gateway/nat-overview The order of operations for outbound connectivity follows this order of precedence: Virtual appliance UDR / ExpressRoute >> NAT gateway >> Instance-level public IP addresses on virtual machines >> Load balancer outbound rules >> default system
upvoted 3 times
...
...
...
...
c2e9cb4
1 year, 3 months ago
This is wrong : a nat gateway dosent require a subnet at all tested on lab ==>corret answer 3
upvoted 4 times
stillface
4 months, 3 weeks ago
Every kind of gateway requires subnet! no exceptions! In some cases will be automatically created.
upvoted 1 times
...
...
...
wooyourdaddy
Highly Voted 2 years, 1 month ago
Selected Answer: C
The correct answer is 4. 1. The Gateway Subnet must exist on its own. 2. As per this link https://learn.microsoft.com/en-us/azure/virtual-network/nat-gateway/nat-overview#nat-gateway-and-basic-sku-resources Basic resources, such as basic load balancer or basic public IPs aren't compatible with Virtual Network NAT. Basic resources must be placed on a subnet not associated to a NAT gateway. 3. The question also states that VM1 and VM2 will access the internet by using their respective public IP address. From the same link above we have the statement: NAT gateway takes precedence over other outbound scenarios (including Load balancer and instance-level public IP addresses) and replaces the default Internet destination of a subnet. So to meet that requirement, we would need a 4th subnet where the NAT gateway is deployed.
upvoted 19 times
ajinkyap
10 months ago
We do not need to have a subnet selected for creation of NAT gateway. checked in lab
upvoted 1 times
...
_NoobMaster69
2 years, 1 month ago
Agree +1
upvoted 1 times
Webesciaki
1 year, 3 months ago
agree: 1 subnet for vng 1 subnet for NAT gw deployment as at least 1 needs to be assigned during creation 1 subnet for VM1 – as it cant be assigned to NAT gw as needs to go out with its own public IP 1 subnet for VM2 – it has basic public IP so cant even be assigned to NAT gw + the same reason as above
upvoted 3 times
...
...
...
bobothewiseman
Most Recent 2 months, 2 weeks ago
Selected Answer: B
GatewaySubnet 2 Subnet 2 Subnet 1
upvoted 1 times
...
manny72
8 months, 1 week ago
Selected Answer: B
Azure virtual network NAT doesn't require a subnet, it's rather associated to a subnet, as many have pointed out. It supports multiple public IPs and can be associated to all subnets in a VNET. https://learn.microsoft.com/en-us/azure/nat-gateway/nat-overview There are no subnets required but we can stick to what is already there, that is 3. This is another non-sense Microsoft question. Please stop posting stuff that is creating just a lot of confusion, read the Microsoft documentation if you are not sure.
upvoted 6 times
Feliphus
5 months, 3 weeks ago
..."Can a NAT gateway be deployed without a public IP address or subnet? Yes, a NAT gateway can be deployed without a public IP address or prefix and subnet. However, it's not operational until you attach at least one public IP address or prefix and a subnet."... https://learn.microsoft.com/en-us/azure/nat-gateway/faq
upvoted 1 times
...
...
efayed
9 months ago
To deploy an Azure Virtual Network NAT gateway named Gateway1 while meeting the requirements and minimizing administrative effort, you need to ensure the correct network setup. Given the information: VM1 and VM2 will access the internet using their public IP addresses. You have Vnet1 with Subnet1 and a GatewaySubnet. You need to deploy Gateway1 to Vnet1. The minimum number of subnets required on Vnet1 is 2: Subnet1: This is where VM1 is connected. GatewaySubnet: This is required for deploying the NAT gateway. Therefore, the minimum number of subnets required is 2.
upvoted 2 times
...
ajinkyap
10 months ago
Selected Answer: B
We dont need a subnet for NAT gateway so subnet 1 subnet 2 and gw subnet >> 3 subnets so ans is B
upvoted 2 times
...
ajinkyap
10 months ago
Selected Answer: C
We dont need a subnet for NAT gateway so subnet 1 subnet 2 and gw subnet >> 3 subnets so ans is C
upvoted 1 times
...
singhaj
11 months, 3 weeks ago
NAT gateway does not need a subnet to deploy it. But it need to be associated with subnet to which it needs to provide NATing. So answer is 3.
upvoted 1 times
...
Juan_Ochoa_TI724
1 year ago
Only 3 subnets 1. Subnet 1 has an Basic SKU public IP address and the NAT gateway isn't compatible to deploy it in the subnet1 2. GatewaySubnet -- Reserved for VPN GW 3. An additional subnet to deploy the NAT Gateway
upvoted 2 times
...
HoangNam2711
1 year, 2 months ago
Selected Answer: C
I have created a virtual network with 2 subnets (one is deploying a VM and one is using Subnet Gateway). The NAT Gateway can be created into a subnet deploying a VM, so I think the answer is 3
upvoted 1 times
HieuDuc
11 months ago
Your answer is 3 and you select C ???
upvoted 1 times
...
...
galahad
1 year, 2 months ago
According to ChatGPT the answer is 4. Yes, in Azure, a NAT (Network Address Translation) gateway typically requires its own subnet. When you deploy a NAT gateway in Azure, it is associated with a specific subnet in a virtual network. This subnet is referred to as the NAT gateway subnet.
upvoted 1 times
ajinkyap
10 months ago
I did a lab to create a NAT gateway without selecting a subnet, there is no need.
upvoted 1 times
...
...
NSF2
1 year, 3 months ago
Selected Answer: B
B seems to be the right answer, because NAT GW doesn't need a dedicated subnet. Rather it can be attached to existing subnets for workload to use it.
upvoted 2 times
stillface
6 months, 3 weeks ago
every gateway needs subnet
upvoted 1 times
...
...
vikrants31
1 year, 3 months ago
As per details I think Subnet2 not hosted in Vnet1
upvoted 2 times
...
GBAU
1 year, 6 months ago
4: Least admin effort requires no changes to existing subnets or VMs, just add a subnet for the NAT Gateway to apply to. This also means the existing VMs keep their use of their PIPs and the GateWaySubnet is unchanged.
upvoted 1 times
...
Faizee
1 year, 6 months ago
Just to deploy the NAT gateway, we do not need to assign it to any subnet at time of creation. So no extra subnet required just to deploy NAT gateway
upvoted 4 times
ConanBarb
1 year, 6 months ago
Portal: "To use the NAT gateway, at least one subnet must be selected. You can add and remove subnets after creating the NAT gateway." I.e. 3 Subnets
upvoted 1 times
LaurentvM
1 year, 3 months ago
This is not true, you can deploy a NAT gateway without linking subnets.
upvoted 2 times
...
...
...
Azused
1 year, 7 months ago
Selected Answer: C
NAT Gateway requires in VNET 1 and hence 4. Otherwise you could have used Subnet2 to avoid creating 4th Subnet. Requirement is to create NAT GW in VNET1 so you need 4th Subnet. Reference: https://learn.microsoft.com/en-us/azure/virtual-network/nat-gateway/nat-overview
upvoted 1 times
...
daemon101
1 year, 9 months ago
Selected Answer: C
Answer seems to be 4 subnets. 1. Subnet1 for VM1 2. Subnet2 for VM2 - you can't associate the NAT gateway with this subnet as the requirement says VM2 needs to use its public IP address. NAT gateway takes precedence over other outbound connectivity methods, including Load balancer, instance-level public IP addresses, and Azure Firewall. 3. Subnet 3 for GatewaySubnet 4. Subnet 4 for NAT Gateway - NAT gateway doesn't need a delegated subnet but you associate it with subnet for the LBs and VMs outbound connectivity. Also, one of the requirements is to deploy NAT gateway. https://learn.microsoft.com/en-us/azure/nat-gateway/nat-overview
upvoted 5 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago